Description of problem: portmap was compiled without linking to libwrap, rendering /etc/hosts.allow and /etc/hosts.deny useless. Version-Release number of selected component (if applicable): 4.0-65 How reproducible: ldd /usr/sbin/pormap (shows no link to libwrap) The line portmap:ALL inside /etc/hosts.deny has no effect, anyone can telnet to port 111. Steps to Reproduce: 1. see above Actual results: no tcpd filtering Expected results: tcpd filtering Additional info:
I'm sorry, I just noticed that tcp wrappers were statically compiled into portmap. But for some reason pormap is not paying attention to /etc/hosts.deny : portmap:ALL.